ul

One In Ten DNS Servers Still Vulnerable To Poisoning




ul

Unpatched Web Vulns Turn Internet Into Drive-By Warzone




ul

Survey Reveals Culture Of IT Admin Snooping






ul

Whisper This, But Java Deserialization Vulnerability Affects More Libraries







ul

Security Failings At Siemens Could Lead To An Attack Worse Than Stuxnet




ul

'Super-Powerful' Flame Worm Actually Boring Bloatware






ul

vbulletin-xssxsrf.txt

The Visitor Messages add-on for vBulletin version 3.7.3 suffers from cross site scripting and cross site request forgery vulnerabilities. This is a worm exploit that takes advantage of these issues.




ul

LPRng use_syslog Remote Format String Vulnerability

This Metasploit module exploits a format string vulnerability in the LPRng print server. This vulnerability was discovered by Chris Evans. There was a publicly circulating worm targeting this vulnerability, which prompted RedHat to pull their 7.0 release. They consequently re-released it as "7.0-respin".




ul

CA-92:04.ATT.rexecd.vulnerability

A vulnerability is present in AT&T TCP/IP Release 4.0 running on SVR4 systems for both the 386/486 and 3B2 RISC platforms. The problem is in the remote execution server /usr/etc/rexecd and a new version of rexecd is available from AT&T.




ul

HP Security Bulletin 2007-14.84

HP Security Bulletin - A potential security vulnerability has been identified in the Aries PA-RISC emulation software running on HP-UX IA-64 platforms only. This vulnerability may allow local unauthorized access.




ul

Opera Update Draws The Curtain On Seven Security Vulns




ul

Opera Releases Update For Extremely Severe Vulns




ul

Opera Users Baffled By Vulnerability Warnings




ul

ultra.zip

No information is available for this file.




ul

ultra-d3.zip

No information is available for this file.














ul

Gaddafi Death Reports Likely To Spawn Multiple Scams






ul

Hackers Attack Iraq's Vulnerable Computers






ul

HP Security Bulletin 2005-10.23

HP Security Bulletin - A potential vulnerability has been identified with Openview Network Node Manager (OV NNM). This vulnerability could be exploited remotely by an unauthorized user to gain privileged access. Affected versions: Openview Network Node Manager (OV NNM) 6.2, 6.4, 7.01, 7.50 running on HP-UX, Solaris, Windows NT, Windows 2000, Windows XP, and Linux.




ul

Disk Pulse Enterprise 9.0.34 Login Buffer Overflow

This Metasploit module exploits a stack buffer overflow in Disk Pulse Enterprise 9.0.34. If a malicious user sends a malicious HTTP login request, it is possible to execute a payload that would run under the Windows NT AUTHORITYSYSTEM account. Due to size constraints, this module uses the Egghunter technique.




ul

Disk Pulse Enterprise 9.9.16 GET Buffer Overflow

This Metasploit module exploits an SEH buffer overflow in Disk Pulse Enterprise version 9.9.16. If a malicious user sends a crafted HTTP GET request it is possible to execute a payload that would run under the Windows NT AUTHORITYSYSTEM account.




ul

EU Nations Mull Funds to Aid Clean Energy in 2030 Climate Deal

European Union governments are considering the use of carbon-permit funds to help finance clean technologies and spur poorer nations toward a low-carbon economy under a planned deal on 2030 climate and energy policies.